2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-44554 | MEDIUM | 5.3 | 1.0% | Dec 20, 2021 | Thinfinity VirtualUI before 3.0 allows a malicious actor to enumerate users registered in the OS (Windows) through the /... |
| CVE-2021-44263 | MEDIUM | 5.4 | 0.6% | Dec 20, 2021 | Gurock TestRail before 7.2.4 mishandles HTML escaping. |
| CVE-2021-44163 | MEDIUM | 6.1 | 0.8% | Dec 20, 2021 | Chain Sea ai chatbot backend has improper filtering of special characters in URL parameters, which allows a remote attac... |
| CVE-2021-45105 | MEDIUM | 5.9 | 100.0% | Dec 18, 2021 | Apache Log4j2 versions 2.0-alpha1 through 2.16.0 (excluding 2.12.3 and 2.3.1) did not protect from uncontrolled recursio... |
| CVE-2021-41496 | MEDIUM | 5.5 | 0.4% | Dec 17, 2021 | Buffer overflow in the array_from_pyobj function of fortranobject.c in NumPy < 1.19, which allows attackers to conduct a... |
| CVE-2021-41495 | MEDIUM | 5.3 | 1.2% | Dec 17, 2021 | Null Pointer Dereference vulnerability exists in numpy.sort in NumPy < and 1.19 in the PyArray_DescrNew function due t... |
| CVE-2021-43840 | MEDIUM | 6.5 | 1.9% | Dec 17, 2021 | message_bus is a messaging bus for Ruby processes and web clients. In versions prior to 3.3.7 users who deployed message... |
| CVE-2021-34141 | MEDIUM | 5.3 | 1.6% | Dec 17, 2021 | An incomplete string comparison in the numpy.core component in NumPy before 1.22.0 allows attackers to trigger slightly ... |
| CVE-2021-33430 | MEDIUM | 5.3 | 1.1% | Dec 17, 2021 | A Buffer Overflow vulnerability exists in NumPy 1.9.x in the PyArray_NewFromDescr_int function of ctors.c when specifyin... |
| CVE-2021-40852 | MEDIUM | 6.1 | 0.7% | Dec 17, 2021 | TCMAN GIM is affected by an open redirect vulnerability. This vulnerability allows the redirection of user navigation to... |
| CVE-2021-38883 | MEDIUM | 5.4 | 0.5% | Dec 17, 2021 | IBM Business Automation Workflow 18.0, 19.0, 20,0 and 21.0 and IBM Business Process Manager 8.5 and 8.6 are vulnerable t... |
| CVE-2021-37863 | MEDIUM | 5.7 | 0.8% | Dec 17, 2021 | Mattermost 6.0 and earlier fails to sufficiently validate parameters during post creation, which allows authenticated at... |
| CVE-2021-37862 | MEDIUM | 5.4 | 0.7% | Dec 17, 2021 | Mattermost 6.0 and earlier fails to sufficiently validate the email address during registration, which allows attackers ... |
| CVE-2021-20607 | MEDIUM | 5.5 | 0.9% | Dec 17, 2021 | Integer Underflow vulnerability in Mitsubishi Electric GX Works2 versions 1.606G and prior, Mitsubishi Electric MELSOFT ... |
| CVE-2021-20606 | MEDIUM | 5.5 | 0.9% | Dec 17, 2021 | Out-of-bounds Read vulnerability in Mitsubishi Electric GX Works2 versions 1.606G and prior, Mitsubishi Electric MELSOFT... |
| CVE-2021-0903 | MEDIUM | 6.7 | 0.1% | Dec 17, 2021 | In apusys, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of... |
| CVE-2021-0902 | MEDIUM | 4.4 | 0.1% | Dec 17, 2021 | In apusys, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local information... |
| CVE-2021-0901 | MEDIUM | 6.7 | 0.1% | Dec 17, 2021 | In apusys, there is a possible memory corruption due to a missing bounds check. This could lead to local escalation of p... |
| CVE-2021-0900 | MEDIUM | 4.4 | 0.1% | Dec 17, 2021 | In apusys, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local information... |
| CVE-2021-0899 | MEDIUM | 6.7 | 0.1% | Dec 17, 2021 | In apusys, there is a possible memory corruption due to a use after free. This could lead to local escalation of privile... |
| CVE-2021-0898 | MEDIUM | 6.7 | 0.1% | Dec 17, 2021 | In apusys, there is a possible memory corruption due to a use after free. This could lead to local escalation of privile... |
| CVE-2021-0897 | MEDIUM | 6.7 | 0.1% | Dec 17, 2021 | In apusys, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of... |
| CVE-2021-0896 | MEDIUM | 6.7 | 0.1% | Dec 17, 2021 | In apusys, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of... |
| CVE-2021-0895 | MEDIUM | 6.7 | 0.1% | Dec 17, 2021 | In apusys, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of... |
| CVE-2021-0894 | MEDIUM | 6.7 | 0.1% | Dec 17, 2021 | In apusys, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now